Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Authentication Bypass Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965 CWE-611 CWE-611 High Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066 CWE-326 CWE-326 High Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613 CWE-444 CWE-444 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795 CWE-1333 CWE-1333 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756 CWE-1333 CWE-1333 High Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621 CWE-436 CWE-436 High Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376 High Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725 High Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726 High Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419 CWE-770 CWE-770 High Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112 High Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418 High Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164 CWE-502 CWE-502 High Ruby on Rails directory traversal vulnerability CVE-2014-0130 CWE-22 CWE-22 High Ruby on Rails DoubleTap RCE (CVE-2019-5420) CWE-502 CWE-502 High Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885 CWE-209 CWE-209 High Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317 CWE-284 CWE-284 High Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111 CWE-94 CWE-94 High Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163 CWE-94 CWE-94 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098 CWE-20 CWE-20 High Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752 CWE-22 CWE-22 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4094) CVE-2008-4094 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-0448) CVE-2011-0448 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-2930) CVE-2011-2930 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2695) CVE-2012-2695 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-6496) CVE-2012-6496 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3482) CVE-2014-3482 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3483) CVE-2014-3483 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17916) CVE-2017-17916 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17917) CVE-2017-17917 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17919) CVE-2017-17919 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17920) CVE-2017-17920 CWE-138 CWE-138 High Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22792) CVE-2023-22792 CWE-1333 CWE-1333 High Ruby on Rails Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795 CWE-1333 CWE-1333 High Ruby on Rails Other Vulnerability (CVE-2013-0333) CVE-2013-0333 High Ruby on Rails Other Vulnerability (CVE-2021-22904) CVE-2021-22904 High Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-0449) CVE-2011-0449 CWE-264 CWE-264 High Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3514) CVE-2014-3514 CWE-264 CWE-264 High Ruby on Rails Resource Management Errors Vulnerability (CVE-2015-7581) CVE-2015-7581 High Ruby on Rails Resource Management Errors Vulnerability (CVE-2016-0751) CVE-2016-0751 High Ruby on Rails SQL injection CVE-2012-2695 CWE-89 CWE-89 High Ruby on Rails Uncontrolled Resource Consumption Vulnerability (CVE-2021-22880) CVE-2021-22880 CWE-400 CWE-400 High Ruby on Rails Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-8162) CVE-2020-8162 CWE-434 CWE-434 High Ruby on Rails weak/known secret token CVE-2013-0156 CWE-200 CWE-200 High Ruby Other Vulnerability (CVE-2021-41817) CVE-2021-41817 High Ruby Out-of-bounds Read Vulnerability (CVE-2022-28739) CVE-2022-28739 CWE-125 CWE-125 High Ruby Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3655) CVE-2008-3655 CWE-264 CWE-264 High Ruby Resource Management Errors Vulnerability (CVE-2008-2664) CVE-2008-2664 High Ruby Resource Management Errors Vulnerability (CVE-2008-3656) CVE-2008-3656 High Ruby Resource Management Errors Vulnerability (CVE-2008-4310) CVE-2008-4310 High Ruby Resource Management Errors Vulnerability (CVE-2014-6438) CVE-2014-6438 High Ruby Uncontrolled Resource Consumption Vulnerability (CVE-2018-8777) CVE-2018-8777 CWE-400 CWE-400 High Ruby Use of Externally-Controlled Format String Vulnerability (CVE-2018-8778) CVE-2018-8778 CWE-134 CWE-134 High Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-11818) CVE-2020-11818 CWE-352 CWE-352 High Rukovoditel Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2021-30224) CVE-2021-30224 CWE-352 CWE-352 High Rukovoditel Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-45020) CVE-2022-45020 CWE-707 CWE-707 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13587) CVE-2020-13587 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13588) CVE-2020-13588 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13589) CVE-2020-13589 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13590) CVE-2020-13590 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13591) CVE-2020-13591 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2020-13592) CVE-2020-13592 CWE-138 CWE-138 High Rukovoditel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-43288) CVE-2022-43288 CWE-138 CWE-138 High Rukovoditel Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-20166) CVE-2018-20166 CWE-434 CWE-434 High SAML Consumer Service External Dereference SSRF CWE-918 CWE-918 High SAML Consumer Service XML entity injection (XXE) CWE-611 CWE-611 High SAML Consumer Service XSLT injection CWE-91 CWE-91 High SAML Consumer Service XSS vulnerability CWE-80 CWE-80 High SAML Response without signature CWE-16 CWE-16 High SAML Respose signature exclusion CWE-16 CWE-16 High Sangfor NGAF Authentication Bypass CWE-287 CWE-287 High SAP B2B/B2C CRM Local File Inclusion CWE-22 CWE-22 High 1...43444546...165 44 / 165